Endpoint Administrator
ARCO a Family of Construction Companies
ABOUT YOU Are you the go-to problem solver when technology doesn’t cooperate? Do you thrive in a fast-paced environment where no two days are the same? Do you enjoy troubleshooting issues, optimizing systems, and creating a seamless experience for end...
Job description
We are seeking a proactive and service-oriented Desktop Administrator to support and enhance our Windows-based and cloud-connected environment. In this role, you will be responsible for managing end-user devices, supporting identity and access through Azure Active Directory, and ensuring devices remain secure and compliant using tools like Microsoft Intune.
WHAT WE CAN OFFER YOU:
We are dedicated to the well-being of our associates and are proud to be consistently recognized as a Best Place to Work. Our compensation and benefits package not only supports our associates and their families but benefits local communities and communities around the world.
Industry-leading performance-based bonus program
Employee Stock Ownership Plan (ESOP)
Traditional and Roth 401k
Tuition reimbursement for associates
Scholarship for associates’ children up to $28,000 per child
1-month paid sabbatical after every five years of employment, plus $5,000 for travel
1-week paid volunteer leave each year
100% charitable match
Medical, dental, and vision insurance coverage
100% paid 12-week maternity leave
At ARCO, our first core value is to treat people fairly and do the right thing. We are committed to building and sustaining a culture that supports diversity and inclusion. We are an equal opportunity employer, and all qualified applicants will receive consideration for employment.
From recruiting, training, and hiring practices to selecting our subcontractors, we understand that diversity of all those involved in the construction process enhances our ability to deliver the best solutions to our customers. We hire the best and the brightest from across the country – constructing a team of experts in architecture, design, engineering, project management, and business services.
A DAY IN THE LIFE:
Endpoint Management & Administration
Serve as primary administrator of Microsoft Intune across a diverse device fleet including Windows 11 (physical and virtual), macOS, iOS, and Android
Manage device configuration policies, compliance baselines, and endpoint protection across both commercial and GCC High (secured) environments
Oversee application deployment, driver updates, and patching through Intune and Windows Update for Business
Maintain device provisioning policies and procedures via Microsoft Autopilot, supporting the full device lifecycle from provisioning through retirement
Identity & Policy Management
Manage device and group objects within Microsoft Entra ID
Administer Group Policy for on-premises environments while participating in the ongoing transition to cloud-native Intune policies for cloud-joined endpoints
Third-Party Platform Administration
Manage PatchMyPC for third-party application update deployment and quality assurance
Administer Apple Business Manager to streamline iOS device provisioning in the corporate environment
Maintain PrinterLogic for cloud-based printer driver deployment and configuration management; collaborate with the Support team and vendors on escalated printer and copier issues
Collaboration & Customer Experience
Act as the escalation point for the wider IT Support team on complex endpoint issues, providing timely communication around troubleshooting steps, workarounds, and ongoing issue status
Reporting & Documentation
Produce regular reporting on device compliance, patching metrics, end user experience, and inventory details using Microsoft Excel and Power BI
Maintain accurate, up-to-date documentation for systems, processes, and troubleshooting procedures
NECESSARY QUALIFICATIONS:
2–5+ years of experience in endpoint administration and desktop support, with strong hands-on expertise in enterprise Windows 11 environments (2000+ devices)
Demonstrated experience administering Microsoft Intune, including device configuration, compliance policies, application deployment, and security baselines; Proficiency managing identities, devices, and groups within Microsoft Entra ID
Experience with Microsoft PowerShell to support remediations & application deployment for endpoints
Experience managing mobile endpoints across iOS and Android platforms, as well as supporting macOS devices
Working knowledge of Group Policy and traditional Active Directory environments; Familiarity with the Microsoft 365 ecosystem, including Exchange Online, Teams, and OneDrive
Understanding of core networking fundamentals including DNS, DHCP, TCP/IP, and VPN; Experience supporting and troubleshooting printer and copier environments
Proven ability to act as a technical escalation point for end-user support teams, with strong troubleshooting and communication skills
Ability to maintain clear documentation and effectively communicate technical information to both technical and non-technical audiences
LEGAL DISCLAIMER:
EOE, including disability/vets